2007 CVE Vulnerabilities

6,580 CVEs published in 2007.

CVE IDSeverityCVSSDescription
CVE-2007-1956SQL injection vulnerability in ubbthreads.php in Groupee UBB.threads 6.1.1 and earlier allows remote attackers to execut...
CVE-2007-1955Multiple stack-based buffer overflows in the SignKorea SKCrypAX ActiveX control module 5.4.1.2 allow remote attackers to...
CVE-2007-1954Multiple directory traversal vulnerabilities in ArchiveXpert 2.02 build 80 allow remote attackers to create files in arb...
CVE-2007-1953Session fixation vulnerability in onelook courts on-line allows remote attackers to hijack web sessions by setting a PHP...
CVE-2007-1952Session fixation vulnerability in onelook onebyone CMS allows remote attackers to hijack web sessions by setting a PHPSE...
CVE-2007-1951Session fixation vulnerability in onelook obo Shop allows remote attackers to hijack web sessions by setting a PHPSESSID...
CVE-2007-1950Cross-site scripting (XSS) vulnerability in index_cms.php in WebBlizzard CMS allows remote attackers to inject arbitrary...
CVE-2007-1944The Java Message Service (JMS) in IBM WebSphere Application Server (WAS) before 6.1.0.7 allows attackers to cause a deni...
CVE-2007-1940IBM Tivoli Business Service Manager (TBSM) 4.1 before Interim Fix 1 logs passwords in plaintext, which allows local user...
CVE-2007-1941Cross-site scripting (XSS) vulnerability in the Active Content Filter feature in Domino Web Access (DWA) in IBM Lotus No...
CVE-2007-1357The atalk_sum_skb function in AppleTalk for Linux kernel 2.6.x before 2.6.21, and possibly 2.4.x, allows remote attacker...
CVE-2007-1925The borrado function in modules/Your_Account/index.php in Tru-Zone Nuke ET 3.4 before fix 7 does not verify that account...
CVE-2007-1939Cross-site scripting (XSS) vulnerability in the embedded webserver in Daniel Naber LanguageTool before 0.8.9 allows remo...
CVE-2007-1938Ichitaro 2005 through 2007, and possibly related products, allows remote attackers to have an unknown impact via unspeci...
CVE-2007-1935PHP file inclusion vulnerability in admin/index.php in ScarAdControl (ScarAdController) 1.1 allows remote attackers to e...
CVE-2007-1934Directory traversal vulnerability in member.php in the eBoard 1.0.7 module for PHP-Nuke allows remote attackers to inclu...
CVE-2007-1933Multiple directory traversal vulnerabilities in PcP-Guestbook (PcP-Book) 3.0 allow remote attackers to include and execu...
CVE-2007-1932Directory traversal vulnerability in scarnews.inc.php in ScarNews 1.2.1 allows remote attackers to include and execute a...
CVE-2007-1931SQL injection vulnerability in index.php in the slownik module in SmodCMS 2.10 and earlier allows remote attackers to ex...
CVE-2007-1930Directory traversal vulnerability in download2.php in cattaDoc 2.21, and possibly other versions including 3.0, allows r...
CVE-2007-1929Directory traversal vulnerability in downloadpic.php in Beryo 2.0, and possibly other versions including 2.4, allows rem...
CVE-2007-1928Directory traversal vulnerability in index.php in witshare 0.9 allows remote attackers to include and execute arbitrary ...
CVE-2007-1927Cross-site scripting (XSS) vulnerability in signup.asp in CmailServer WebMail 5.3.4 and earlier allows remote attackers ...
CVE-2007-1926Cross-site scripting (XSS) vulnerability in JBMC Software DirectAdmin before 1.293 does not properly display log files, ...
CVE-2007-1924Multiple PHP remote file inclusion vulnerabilities in phpContact allow remote attackers to execute arbitrary PHP code vi...

Check if your code is affected by 2007 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now